Item Search

NameAudit NamePluginCategory
1.5 Ensure Interactive Login is DisabledCIS Oracle MySQL Community Server 9.7 v1.0.0 L2 MySQL RDBMS on Linux UnixUnix

ACCESS CONTROL

1.7.2 - Miscellaneous Enhancements - at access - 'at.allow includes no other users'CIS AIX 5.3/6.1 L2 v1.1.0Unix

ACCESS CONTROL

1.7.3 - Miscellaneous Enhancements - '/etc/ftpusers includes root'CIS AIX 5.3/6.1 L1 v1.1.0Unix

ACCESS CONTROL

1.15 Ensure that Snowflake tasks do not run with the ACCOUNTADMIN or SECURITYADMIN role privilegesCIS Snowflake Foundations v2.0.0 L1Snowflake

ACCESS CONTROL

2.5 Ensure that the User-ID Agent has minimal permissions if User-ID is enabledCIS Palo Alto Firewall 11 v1.2.0 L1Palo_Alto

ACCESS CONTROL

2.8 Ensure that security policies restrict User-ID Agent traffic from crossing into untrusted zonesCIS Palo Alto Firewall 9 v1.1.0 L1Palo_Alto

ACCESS CONTROL

2.12.9 - Miscellaneous Config - /etc/ftpusers - '/etc/ftpusers contains daemon'CIS AIX 5.3/6.1 L2 v1.1.0Unix

ACCESS CONTROL

2.12.9 - Miscellaneous Config - /etc/ftpusers - '/etc/ftpusers contains guest'CIS AIX 5.3/6.1 L2 v1.1.0Unix

ACCESS CONTROL

2.12.9 - Miscellaneous Config - /etc/ftpusers - '/etc/ftpusers contains invscout'CIS AIX 5.3/6.1 L2 v1.1.0Unix

ACCESS CONTROL

2.12.9 - Miscellaneous Config - /etc/ftpusers - '/etc/ftpusers contains lp'CIS AIX 5.3/6.1 L2 v1.1.0Unix

ACCESS CONTROL

2.12.9 - Miscellaneous Config - /etc/ftpusers - '/etc/ftpusers contains sys'CIS AIX 5.3/6.1 L2 v1.1.0Unix

ACCESS CONTROL

2.12.14 - Miscellaneous Config - authorized users in cron.allow - 'cron.allow contains no other entries besides sys and adm'CIS AIX 5.3/6.1 L1 v1.1.0Unix

ACCESS CONTROL

3.4 Ensure that each role for each MongoDB database is needed and grants only the necessary privilegesCIS MongoDB 5 v1.2.0 L1 MongoDBMongoDB

ACCESS CONTROL

3.5 Review Superuser/Admin RolesCIS MongoDB 8 v1.0.0 L2 MongoDBMongoDB

ACCESS CONTROL

3.5 Review Superuser/Admin RolesCIS MongoDB 7 v1.2.0 L2 MongoDBMongoDB

ACCESS CONTROL

3.5 Review Superuser/Admin RolesCIS MongoDB 5 v1.2.0 L2 MongoDBMongoDB

ACCESS CONTROL

3.6 Ensure the SQL Server's SQLAgent Service Account is Not an AdministratorCIS Microsoft SQL Server 2019 v1.6.0 L1 AWS RDS MS_SQLDBMS_SQLDB

ACCESS CONTROL

3.6 Ensure the SQL Server's SQLAgent Service Account is Not an AdministratorCIS Microsoft SQL Server 2019 v1.6.0 L1 Database Engine WindowsWindows

ACCESS CONTROL

3.6 Review Superuser/Admin Roles - clusterAdminCIS MongoDB 3.6 Database Audit L1 v1.1.0MongoDB

ACCESS CONTROL

3.6 Review Superuser/Admin Roles - dbAdminAnyDatabaseCIS MongoDB 3.6 Database Audit L1 v1.1.0MongoDB

ACCESS CONTROL

3.6 Review Superuser/Admin Roles - dbOwnerCIS MongoDB 3.6 Database Audit L1 v1.1.0MongoDB

ACCESS CONTROL

3.6 Review Superuser/Admin Roles - readWriteAnyDatabaseCIS MongoDB 3.6 Database Audit L1 v1.1.0MongoDB

ACCESS CONTROL

3.6 Review Superuser/Admin Roles - userAdminCIS MongoDB 3.6 Database Audit L1 v1.1.0MongoDB

ACCESS CONTROL

3.6 Review Superuser/Admin Roles - userAdminAnyDatabaseCIS MongoDB 3.6 Database Audit L1 v1.1.0MongoDB

ACCESS CONTROL

3.7 Ensure the SQL Server's Full-Text Service Account is Not an AdministratorCIS Microsoft SQL Server 2019 v1.6.0 L1 Database Engine WindowsWindows

ACCESS CONTROL

4.1 Ensure sudo is configured correctly - /etc/sudoers.d/postgresCIS PostgreSQL 12 OS v1.1.0Unix

ACCESS CONTROL

4.1.7 Limit use of the Bind, Impersonate and Escalate permissions in the Kubernetes clusterCIS Google Kubernetes Engine GKE Autopilot v2.0.0 L1GCP

ACCESS CONTROL

4.1.7 Limit use of the Bind, Impersonate and Escalate permissions in the Kubernetes clusterCIS Google Kubernetes Engine GKE v2.0.0 L1 GCPGCP

ACCESS CONTROL

5.1 Ensure Only Administrative Users Have Full Database AccessCIS MySQL 5.7 Community Database L1 v2.0.0MySQLDB

ACCESS CONTROL

5.1 Ensure Only Administrative Users Have Full Database AccessCIS Oracle MySQL Enterprise Edition 9.7 v1.0.0 L1 MySQL RDBMS on Linux MySQLDBMySQLDB

ACCESS CONTROL

5.1 Ensure Only Administrative Users Have Full Database AccessCIS Oracle MySQL Community Server 9.7 v1.0.0 L1 MySQL RDBMS MySQLDBMySQLDB

ACCESS CONTROL

5.1 Ensure Only Administrative Users Have Full Database AccessCIS Oracle MySQL Community Server 8.0 v1.2.0 L1 MySQL RDBMS MySQLDBMySQLDB

ACCESS CONTROL

5.1 Ensure Only Administrative Users Have Full Database AccessCIS Oracle MySQL Community Server 8.4 v1.1.0 L1 MySQL RDBMS MySQLDBMySQLDB

ACCESS CONTROL

5.1 Ensure Only Administrative Users Have Full Database AccessCIS Oracle MySQL Enterprise Edition 8.0 v1.5.0 L1 MySQL RDBMS MySQLDBMySQLDB

ACCESS CONTROL

5.1 Ensure Only Administrative Users Have Full Database AccessCIS Oracle MySQL Enterprise Edition 8.4 v1.1.0 L1 MySQL RDBMS on Linux MySQLDBMySQLDB

ACCESS CONTROL

5.1 Ensure Only Administrative Users Have Full Database AccessCIS Oracle MySQL Enterprise Edition 9.7 v1.0.0 L1 MySQL RDBMS MySQLDBMySQLDB

ACCESS CONTROL

5.1 Ensure Only Administrative Users Have Full Database AccessCIS MariaDB 10.6 Database L1 v1.1.0MySQLDB

ACCESS CONTROL

5.1 Ensure Only Administrative Users Have Full Database AccessCIS MySQL 5.6 Community Database L1 v2.0.0MySQLDB

ACCESS CONTROL

5.1.7 Avoid use of system:masters groupCIS Kubernetes v2.0.1 L1 Master NodeUnix

ACCESS CONTROL

5.2 Ensure 'FILE' is Not Granted to Non-Administrative UsersCIS Oracle MySQL Community Server 9.7 v1.0.0 L1 MySQL RDBMS MySQLDBMySQLDB

ACCESS CONTROL

5.2.2 Minimize the admission of privileged containersCIS Kubernetes v2.0.1 L1 Master NodeUnix

ACCESS CONTROL

5.2.8 Ensure SSH root login is disabledCIS SUSE Linux Enterprise Workstation 11 L1 v2.1.1Unix

ACCESS CONTROL

5.3 Ensure 'PROCESS' is Not Granted to Non-Administrative UsersCIS Oracle MySQL Enterprise Edition 9.7 v1.0.0 L2 MySQL RDBMS MySQLDBMySQLDB

ACCESS CONTROL

5.5 Ensure 'SHUTDOWN' is Not Granted to Non-Administrative UsersCIS Oracle MySQL Community Server 9.7 v1.0.0 L1 MySQL RDBMS MySQLDBMySQLDB

ACCESS CONTROL

5.6 Ensure 'CREATE USER' is Not Granted to Non-Administrative UsersCIS Oracle MySQL Enterprise Edition 9.7 v1.0.0 L1 MySQL RDBMS MySQLDBMySQLDB

ACCESS CONTROL

5.6 Ensure 'CREATE USER' is Not Granted to Non-Administrative UsersCIS Oracle MySQL Community Server 9.7 v1.0.0 L1 MySQL RDBMS on Linux MySQLDBMySQLDB

ACCESS CONTROL

7.1 Ensure a replication-only user is created and used for streaming replicationCIS PostgreSQL 17 v1.1.0 L1 Database PostgreSQLDBPostgreSQLDB

ACCESS CONTROL

7.2 Ensure logging of replication commands is configuredCIS PostgreSQL 14 DB v 1.3.0PostgreSQLDB

ACCESS CONTROL

7.4 Create /etc/ftpusersCIS Solaris 9 v1.3Unix

ACCESS CONTROL

9.3 Ensure 'super_priv' is Not Set to 'Y' for Replication UsersCIS Oracle MySQL Community Server 9.7 v1.0.0 L1 MySQL RDBMS MySQLDBMySQLDB

ACCESS CONTROL